CVE-2026-10847 PUBLISHED

Local Privilege Escalation vulnerability in Check Point Identity Agent Full for Windows OS

Assigner: checkpoint
Reserved: 04.06.2026 Published: 11.06.2026 Updated: 11.06.2026

A local privilege escalation vulnerability exists in Check Point Identity Agent Full for Windows OS. An authenticated local user may be able to execute arbitrary code with SYSTEM privileges due to improper handling of executable resolution during the log collection process. Successful exploitation could allow an attacker to gain elevated privileges on the affected Windows endpoint.

Metrics

CVSS Vector: CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
CVSS Score: 7.8

Product Status

Vendor checkpoint
Product Identity Agent
Versions
  • Version Versions prior to 81.087.0000 is affected

References

Problem Types

  • Uncontrolled Search Path Element CWE